CyberSecurity News
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
AI summary
Attackers compromised the registries for three country-code top-level domains, allowing them to obtain unauthorized HTTPS certificates for several Google domains. The affected domains are those ending in .gh, .sl, and .as, which correspond to Ghana, Sierra Leone, and American Samoa, respectively. Google's internal systems were not breached in the attack. The unauthorized certificates could be used by attackers to impersonate legitimate sites over encrypted connections. This poses a risk to any domain using these top-level domains, rather than Google's own systems. The compromise was reported by Google on October 6.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

